CyberHoot’s Cybersecurity Newsletter: September 2026

1st October 2026 | Newsletters CyberHoot’s Cybersecurity Newsletter: September 2026

Editor: Craig Taylor

Welcome to CyberHoot’s September Newsletter!

This month, cybersecurity came back to one theme: attackers are finding new ways to hijack our trust, whether through the tools we use, the permissions we grant, or the brands we recognize.

In September, we explored how organizations should use AI responsibly with an Acceptable AI Use Policy and a Red-Yellow-Green checklist for evaluating AI tools. We also covered OAuth consent phishing, where attackers skip stealing passwords entirely by convincing users to approve malicious app permissions.

On the malware front, we looked at fake software installers that disable Windows Update, weakening long-term protections. And we examined a scam targeting owners of stolen iPhones, where criminals use AI-powered “Apple Support” calls to trick victims into revealing passcodes and verification codes.

The common lesson: modern cyberattacks rely on convincing people to make a seemingly reasonable decision. Staying secure means slowing down, questioning unexpected requests, and understanding exactly what you are approving, installing, or sharing.

By the time you read this, our 31 2026 Cybersecurity Infographics are ready for download. Add your logo and share one a day during October’s Cybersecurity Awareness Month (CAM). Each infographic builds cyber literacy for business owners and end users alike. One quick read a day keeps the phishers away.

Laugh. Learn. Hoot Up!

Craig CEO,
Co-Founder, CyberHoot


We’re kicking things off with our first daily cybersecurity tip and video infographic. Follow along all month long for quick, practical tips to help you stay safer online.

Day 1 starts now! 🦉


Corp MDM: The Fake Work App Who Wanted to Read Your Texts


Acceptable AI Use Policy and Red-Yellow-Green Checklist


OAuth Consent Phishing: Protect Your Permissions, Not Just Your Password


Fake Software Installers Are Turning Off Windows Update


When “Apple Support” Calls You Back, Hang Up


CyberHoot has officially achieved a long-standing goal of being featured on the legendary “Security Now!” podcast with Leo Laporte and Steve Gibson. To be 100% clear, this is a paid sponsorship of the podcast.

In addition to that, Leo Laporte personally endorsed CyberHoot:

“When we got phished [before CyberHoot] it became pretty clear we needed to do more to protect our company. The same old training just wasn’t working. CyberHoot came to the rescue. It’s fun, our team loves it, and best of all, it’s helping to keep us safe. Hoot on!” — Leo Laporte

Please watch this quick 3-minute feature as Leo Laporte shares his experience with HootPhish and explains why CyberHoot’s positive reinforcement approach to phishing education caught his attention.


Liking CyberHoot? We need your help. Please leave us your review at G2.com!


G2 –

For more information on how to leave a CyberHoot review, please watch the brief video overview below.  Note: to avoid fraudulent reviews, each review website will require to you to create and validate your identity through an email account registration process.



We’re excited to share several new additions to our Partner Integrations page, making it easier for partners to connect CyberHoot with the tools they already use every day. These new integrations help streamline client and user syncing, simplify training management, and make it easier to keep documentation up to date across your systems.

“Our partners asked us to meet them inside the tools they already use every day, so that’s what we did. Partners sync clients and users into CyberHoot in minutes, and view training progress inside their existing tools. This means less manual work, automated billing, better retention, lower costs, and safer clients!” said Craig Taylor, CISSP, CEO and Co-Founder of CyberHoot.

New integrations are now available for HaloPSA, Autotask PSA, ConnectWise PSA, Hudu, and IT Glue. Whether you’re looking to sync companies and users into CyberHoot for training or publish tenant training status directly into your documentation platform, these integrations are designed to reduce manual work and help you manage your clients more efficiently.


We’ve been quietly building the largest upgrade to cyber awareness gamification in CyberHoot history — and it’s going to change how your users experience training. Think points you can actually earn, achievements worth bragging about, avatars, leaderboards, and a whole new way to show off your organization’s cyber strength.

Complete your training. Report those phish. Every action is about to count like never before.

Stay tuned — the flock is about to take flight.


Please note: CyberHoot is upgrading all Power Users to Autopilot for free. Contact support@cyberhoot.com to schedule your free upgrade. Power platform will be retired later this year Sept. 2026.

Autopilot Platform Release Notes

  • Auditor role: read-only tenant-wide compliance dashboard in My Assignments.
  • Add “Send Weekly Exposure Emails” toggle to Dark Web settings.
  • Add customer opt-out for the weekly dark web exposure email.
  • Global search bar for pages and tenants. Global search: find users across tenants.
  • Implemented group management in CSV upload and mass user actions.
  • Mass acknowledge selected users’ exposures on the Dark Web results page.
  • Show a clear error when the Google sync domain is not found in Google Workspace.
  • Show the Google sync domain-not-found error to tenant admins.
  • Match projected annual training schedule to the Autopilot scheduler’s year rollover.
  • Add mass mark complete to the assignment compliance report.
  • CustomHoots video link accepts any embeddable video URL.

DNS Spoofing

DNS Spoofing, also known as DNS Cache Poisoning, is a cyberattack in which an attacker manipulates the Domain Name System (DNS) to redirect users from a legitimate website to a malicious one. Because users often see the correct web address in their browser, they may unknowingly enter passwords, financial information, or other sensitive data into a fake website controlled by the attacker.

DNS acts as the Internet’s “phonebook,” translating domain names like example.com into IP addresses that computers use to locate websites. DNS spoofing corrupts this process by providing a false IP address for a legitimate domain.

Click here to read more!


Enroll in CyberHoot’s Referral Program today and start earning a 20% share of all revenue generated for one year by those who register through your exclusive referral link. As a referral partner, not only will you receive financial rewards, but you’ll also experience the satisfaction of aiding others in becoming more security-conscious, safeguarding them against cyber threats. Don’t hesitate, sign up now at https://cyberhoot.com/referral-program/.

Referral through Autopilot’s Dashboard:

Join CyberHoot in our mission to create a more aware and better secured world! Recommend CyberHoot Autopilot to a friend, and they will enjoy a complimentary first month. For every new sign up who uses your referral link, you will receive a free month added to your account. This offer is exclusively for first-time CyberHoot registrants.


Know someone who had a close call recently with a cyber attack, phishing email, or social engineering phone call?  Recommend CyberHoot’s free cybersecurity training.  They’ll receive six (6) videos (each video is 3-4min.) and one of our positive reinforcement, hyper-realistic, phishing simulations. All for free.

Registration: https://cyberhoot.com/individuals


Looking for additional resources?

CyberHoot Case-Studies

CyberHoot White Paper Download – How HootPhish Improves upon AttackPhish

All New: 2025 Infographics on Cybersecurity Statistics


Secure your business with CyberHoot Today!!!

Latest Blogs

Stay sharp with the latest security insights

Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.

Corp MDM: The Fake Work App Who Wanted to Read Your Texts

Corp MDM: The Fake Work App Who Wanted to Read Your Texts

Author: Katie Boquetti | Editorial: Craig Taylor Editorial by Craig Taylor: We've known for a while here...

Read more
OAuth Consent Phishing: Protect Your Permissions, Not Just Your Password

OAuth Consent Phishing: Protect Your Permissions, Not Just Your Password

Author: Katie Boquetti | Editorial: Craig Taylor Editorial by Craig Taylor: I'm blessed to have...

Read more
Fake Software Installers Are Turning Off Windows Update

Fake Software Installers Are Turning Off Windows Update

Author: Katie Boquetti | Editorial: Craig Taylor Editorial by Craig Taylor: I remember the early days of...

Read more